Role summary
We are seeking a mid-level Security Engineer to develop, implement, and maintain robust security infrastructure protecting our corporate systems and data, with primary focus on Microsoft security ecosystems. You will architect and manage our Microsoft 365 environment, deploy advanced threat protection through Microsoft Defender, and secure our Azure cloud infrastructure. This role bridges infrastructure security and cloud security.
Responsibilities
- Design and maintain Microsoft 365 security posture, including Exchange Online, Teams, and SharePoint protection
- Deploy, configure, and optimize Microsoft Defender for Endpoint, Defender for Office 365, and Defender for Cloud
- Manage advanced threat protection policies, phishing prevention, and email filtering rules
- Conduct threat hunts and investigate security alerts from Defender ecosystem tools
- Implement conditional access policies and identity-driven security controls
- Secure Azure infrastructure through network segmentation, NSGs, and Azure Firewall configuration
- Implement Azure-native security services (Azure Security Center, Key Vault, App Configuration)
- Conduct Azure resource audits and enforce compliance through Azure Policy
- Manage privileged access and identity governance in Azure AD/Entra ID
- Deploy and configure firewalls, intrusion prevention systems, and web application firewalls
- Conduct vulnerability scans and coordinate patch management across infrastructure and cloud workloads
- Lead initial triage of security alerts and participate in active incident response operations
- Integrate security controls into CI/CD pipelines (container scanning, secret management, dependency checks)
- Participate in security architecture reviews and recommend improvements
- Document security configurations and maintain runbooks for operational efficiency
- Support compliance audits and regulatory assessments (ISO 27001, SOC 2, industry-specific)
Qualifications
- University degree in CS/IT/IS/IMS or equivalent
- Microsoft Azure Security Engineer Associate (AZ-500) — Required
- CompTIA CySA+, GIAC (GSEC/GCIA), or equivalent mid-level credential
- Strong knowledge of Microsoft security products: Defender suite, Entra ID, Azure security services
- Network security fundamentals: TCP/IP, firewalls, VPNs, intrusion detection
- Scripting/automation: Python, PowerShell, Bash for security tooling and log analysis
- Fluency in both English and Arabic
Requirements
- 2–3 years dedicated experience in cybersecurity, cloud security, or infrastructure engineering
- Demonstrated experience with Microsoft 365 administration and security (at least 1 year)
- Hands-on experience with Azure infrastructure and security services
- Experience with at least one SIEM tool
Education
University degree in CS/IT/IS/IMS or equivalent
Experience
2–3 years dedicated experience in cybersecurity, cloud security, or infrastructure engineering
Skills
- Microsoft Defender suite
- Entra ID
- Azure security services
- TCP/IP
- Firewalls
- VPNs
- Intrusion detection
- Python
- PowerShell
- Bash
- SIEM tools
- Microsoft 365 administration
- Azure infrastructure